10
CVSSv2

CVE-2002-0613

Published: 18/06/2002 Updated: 05/09/2008
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 1000
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

dnstools.php for DNSTools 2.0 beta 4 and previous versions allows remote malicious users to bypass authentication and gain privileges by setting the user_logged_in or user_dnstools_administrator parameters.

Vulnerable Product Search on Vulmon Subscribe to Product

dnstools software dnstools 2.0_beta3

dnstools software dnstools 2.0_beta4

Exploits

source: wwwsecurityfocuscom/bid/4617/info DNSTools is a web based managment tool for DNS information It is implemented in PHP, and available for Linux and Solaris A vulnerability has been reported in some versions of DNSTools which allows any remote attacker to gain administrative access An artificially constructed URL may define vari ...